WP6 – Risk Analysis and Mitigation Strategies
Coordinated by
RES (M01-M16)
Objective
This work package researches and develops a methodology for continuous risk assessment process on the ICT supply chain, such that the system is continuously analyzed for potential weaknesses, and corresponding mitigation strategies can be enacted using BIECO solutions.
This WP has the following concrete objectives:
- To identify in an automated fashion main threats, including those that could also derive in a physical hazard in a cyber-physical system.
- To compute the severity of the consequences of threats and hazards.
- To make the link between systems’ internal security causes and their possible safety hazards explicit, e.g. in failure logic models such as Component Fault Trees.
- To define mitigation strategies.
- Out of both design time risk assessment models and mitigation strategies, runtime risk management models shall be synthesized systematically that are suitable to support runtime resilience mechanisms defined in WP4.
- Design and develop security, privacy and accountability measures for all the entities involved in the supply chain.
Envisioned mitigations range from process-based to architecture-based as well as related to the introduction of new patches and error detectors. The WP will ultimately produce a methodology and supporting tools for the systematic and automated i) analysis of risks, and ii) identification of mitigations that shall be equipped in the BIECO framework.
Deliverables
- D6.1 Blockly4SoS model and simulator WP6 (7 – RESILTECH) Report Public M10
- D6.2 Blockly4SoS user guide WP6 (7 – RESILTECH) Report Public M12
- D6.3 Risk Assessment and additional requirements WP6 (10 – 7BULLS) Report Public M24
- D6.4 Mitigations identification and their design WP6 (2 – Fraunhofer) Report Public M16
Outcomes
WP5 meeting
In the meetings of November, the members of WP5 have fine-tuned the user interaction with the Auditing Component, part of the BIECO framework. Demo’s preparation is progressing with benefits from profitable and interesting discussions between WP5 members. Taking...
Presentation of BIECO’s project report at ICTSS21
the 33rd IFIP International Conference on Testing Software and Systems (ICTSS)On 11th of November, Ricardo Silva Peres from UNINOVA presented a summary of WP2 in the Project Report of BIECO titled „The BIECO Conceptual Framework Towards Security and Trust in ICT...
NIST Bug Framework – BIECO taxonomy Sync
On 16th of November we‘ve had the honour to synchronize on WP4 research activities with experts from NIST, INMETRO and Ericsson. Productive discussions with Irena Bojanova (NIST: https://www.nist.gov/people/irena-bojanova ), Carlos Galhardo (INMETRO...
WP5 – Specification of the check Trajectory
On 17th of Nov. we have deepened the specification of the check Trajectory function within the local planner of the robotic use case. This step brings us further towards creation of horizontal abstraction for the digital twin creation.
The BIECO presentation – video
The BIECO video presentation M12Other results
WP4 meeting
BIECO WP4Within WP4 today we have explored the extent to which the ICT GW Use Case developed by RESILTECH within Net2DG project can accommodate runtime downloads of new functionalities and/or runtime..